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IN THE CLAIMS 
Please amend the claims as follows: 

Claim 1 (Currently Amended): A packet cryptographic processing proxy apparatus 
connected between the Internet and a terminal, comprising: 

a cryptographic communication channel information storage part which stores 
cryptographic communication channel information used for establishing a cryptographic 
communication channel at least for packet communication on the Internet[[,]] or in packet 
communication between a counterpart apparatus connected to the Internet and the terminal; 
and 

a cryptographic processing part which performs cryptographic processing for a 
received packet, which is forwarded from the counterpart apparatus to the terminal or from 
the terminal to the counterpart apparatus, based on the cryptographic communication channel 
information stored in said cryptographic communication channel information storage part; 

a packet determination part which determines, from the received packet, whether or 
not to agree with the counterpart apparatus on cryptographic communication channel 
information for establishing a packet communication channel between the counterpart 
apparatus and the terminal; and 

a cryptographic communication channel information agreement part which, if the 
packet determination determines necessity of agreement, makes the agreement and stores the 
agreed cryptographic communication channel information in said cryptographic 
communication channel information storage part . 

Claim 2 (Previously Presented): The packet cryptographic processing proxy 
apparatus according to Claim 1 , further comprising: 
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a filter information storage part which stores sending source identification 
information, sending destination identification information, protocol information indicating a 
packet communication procedure and processing instruction information indicating whether 
or not to perform cryptographic processing, as filter information; and 

a cryptographic processing determination part, which, by referring to said filter 
information storage part based on filter information in the packet received by the packet 
cryptographic processing apparatus, determines whether or not to perform cryptographic 
processing of the received packet by said cryptographic processing part based on the 
processing instruction information. 

Claim 3 (Currently Amended): The packet cryptographic processing proxy apparatus 
according to Claim 1 , further comprising a received packet determination part which 
determines whether or not a received packet from the counterpart apparatus a which is 
forwarded to the terminal is valid. 

Claim 4 (Original): The packet cryptographic processing proxy apparatus according 
to Claim 1, wherein said cryptographic communication channel information storage part 
includes a detachable, tamper-proof device in which at least part of the cryptographic 
communication channel information is stored. 

Claim 5 (Original): The packet cryptographic processing proxy apparatus according 
to Claim 1 , wherein said cryptographic communication channel information storage part 
includes a storage medium in which at least part of the cryptographic communication channel 
information is changeable. 
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Claim 6 (Previously Presented): The packet cryptographic processing proxy 
apparatus according to any one of Claims 1 to 5, being logically directly connected to a 
network interface device of the terminal. 

Claim 7 (Previously Presented): The packet cryptographic processing proxy 
apparatus according to any one of Claims 1 to 5, being implemented on a device which is 
connected between the Internet and the terminal and which has no IP address. 

Claim 8 (Currently Amended): The packet cryptographic processing proxy apparatus 
according to any one of Claims 2 to 5, further comprising a terminal information collection 
part which collects a part of at least one of the cryptographic communication channel 
information and the filter information and stores the informati on at least one of the 
cryptographic communication channel information and the filter information in said filter 
information storage part. 

Claim 9 (Currently Amended): The packet cryptographic processing proxy apparatus 
according to Claim 1, further comprising^:]] 

a pack e t d e t e rmination part which d e t e rmin e s from th e r e c e iv e d pack e t whether or not 
to agr ee with th e count e rpart apparatus on cryp to graphic communication chann e l information 
for es tablishing a pack e t communication chann e l b e tw ee n th e count e rpart apparatus and th e 
t e rminal; 

a cryptographic communication chann e l information agr ee m e nt part which, if th e 
pack e t d e t e rmination det e rmines n e c e s s ity of agr ee m e nt, mak e s th e agr e em e nt and stor e s the 
agr ee d cryptographic communication chann e l information in said cryptographic 
communication channel information s torag e part; and 
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a key information setting part which sets key information for performing 
cryptographic processing of a packet, in the cryptographic communication channel 
information agreed by said cryptographic communication channel information agreement 
part, for the terminal. 

Claim 10 (Currently Amended): The packet cryptographic processing proxy 
apparatus according to Claim 9, wherein, if determining necessity of agreement on 
cryptographic communication channel information, said packet determination part determines 
whether valid cryptographic communication channel information corresponding to the 
received packet is stored in said cryptographic communication channel information storage 
part, causes said key information setting part to set key information in the cryptographic 
communication channel information for the terminal if the valid cryptographic 
communication channel information is stored, and causes said cryptographic communication 
channel information agreement part to make an agreement on cryptographic communication 
channel information if the valid cryptographic communication channel is not stored. 

Claim 1 1 (Original): The packet cryptographic processing proxy apparatus according 
to Claim 10, wherein, if said packet determination part determines necessity of agreement on 
the cryptographic communication channel information, and address information in the 
received packet is stored in said filter information storage part, said packet determination part 
causes agreement on the key information to be made. 

Claim 12 (Original): The packet cryptographic processing proxy apparatus according 
to Claim 11, further comprising a terminal information acquisition part which detects the 
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terminal, acquires address information from the terminal and stores the acquired address 
information in said filter information storage part. 

Claim 1 3 (Currently Amended): A packet cryptographic processing method 

comprising the steps of: 

(a) storing cryptographic communication channel information used for establishing a 
cryptographic communication channel at least for packet communication on the Internet[[,]] 
or in packet communication between a counterpart apparatus connected to the Internet and a 
terminal, in a cryptographic communication channel information storage part under 
agreement with the counterpart apparatus; and 

(b) performing cryptographic processing for a received packet, which is forwarded 
from the counterpart apparatus to the terminal or from the terminal to the counterpart 
apparatus, based on the cryptographic communication channel information; 

wherein the step (a) comprises the steps of: 

(a-O determining whether or not the received packet requires agreement on 
cryptographic communication channel information and, if agreement is required, making 
agreement, for packet communication between a counterpart apparatus connected to the 
Internet and a terminal, with the counterpart apparatus on cryptographic communication 
channel information for performing cryptographic processing of a packet transmitted with the 
counterpart apparatus; and 

(a-2) if agreement is not required, bypassing or discarding the received packet . 

Claim 14 (Original): The packet cryptographic processing method according to 
Claim 13, wherein the step (b) comprises the steps of: 
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(b-1) by referring to a filter information storage part based on filter information in the 
received packet, determining whether or not to perform cryptographic processing for the 
received packet; and 

(b-2) causing the cryptographic processing to be performed if it is determined by the 
determination that cryptographic processing is to be performed, and causing the received 
packet to immediately pass or to be discarded if it is determined by the determination that 
cryptographic processing is not to be performed. 

Claim 1 5 (Currently Amended): The packet cryptographic processing method 
according to Claim 13, wherein the step (a) further comprises: the st e ps of: 

(a 1) determining wheth e r or not the received pack e t r e quir e s agr ee m e nt on 
cryptographic communication chann e l information and, if agreem e nt is required, making 
agr ee m e nt, for pack e t communication betwe e n a counterpart apparatus conn e ct e d to th e 
Int e rn e t and a t e rminal, with the count e rpart apparatus on cryp to graphic communication 
chann e l information for p e rforming cryptographic processing of a pack e t transmitted with th e 

count e rpart apparatu s ; 

(a 2) (a-3) setting the agreed cryptographic communication channel information for 

the terminal ; and 

(a 3) if agreem e nt is not requir e d, bypassing or discarding th e r e c e iv e d pack e t . 

Claim 16 (Currently Amended): The packet cryptographic processing method 
according to Claim [[15]] 13, wherein the step (a-1) comprises the steps of: 

(a-1-1) determining whether valid cryptographic communication channel information 
corresponding to the received packet is stored in the cryptographic communication channel 
information storage part; and 
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(a- 1-2) if the cryptographic communication channel information is stored, setting key 
information in the cryptographic communication channel information for the terminal; and, if 
the cryptographic communication channel information is not stored, making agreement on the 
cryptographic communication channel information, storing the agreed cryptographic 
communication channel information in the cryptographic communication channel 
information storage part as well as setting the agreed cryptographic communication channel 
information for the terminal. 

Claim 17 (Original): The packet cryptographic processing method according to 
Claim 16, wherein the step (a- 1-1) comprises a step of, if agreement on cryptographic 
communication channel information for the packet is required, determining first whether 
address information in the received packet is stored in a filter information storage part; and, if 
the address information is stored, performing the determination about whether valid 
cryptographic communication channel information is stored in the cryptographic 
communication channel information storage part. 

Claim 1 8 (Currently Amended): A readable recording medium on which a program 
for causing a computer to perform the packet cryptographic processing method according to 
any one o f Claims 13 . 14. 16 and [[to]] 17 is recorded. 
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